3zizme

1 exploit Active since Feb 2024
CVE-2023-49339 NOMISEC MEDIUM WRITEUP
Ellucian Banner 9.17 - Info Disclosure
Ellucian Banner 9.17 allows Insecure Direct Object Reference (IDOR) via a modified bannerId to the /StudentSelfService/ssb/studentCard/retrieveData endpoint.
3 stars
CVSS 6.5